Taurus-AN00B versions earlier than 10.1.0.156(C00E155R7P2) have a privilege elevation vulnerability. Due to lack of privilege restrictions on some of the business functions of the device. An attacker could exploit this vulnerability to access the protecting information, resulting in the elevation of the privilege.
References
Link | Resource |
---|---|
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20201014-01-privilege-en | Vendor Advisory |
https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20201014-01-privilege-en | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
21 Nov 2024, 05:40
Type | Values Removed | Values Added |
---|---|---|
References | () https://www.huawei.com/en/psirt/security-advisories/huawei-sa-20201014-01-privilege-en - Vendor Advisory |
Information
Published : 2020-10-19 20:15
Updated : 2024-11-21 05:40
NVD link : CVE-2020-9112
Mitre link : CVE-2020-9112
CVE.ORG link : CVE-2020-9112
JSON object : View
Products Affected
huawei
- taurus-an00b_firmware
- taurus-an00b
CWE
CWE-269
Improper Privilege Management